Linux kernel
cpe:2.3:a:linux:linux_kernel:*:*:*:*:*:*:*, +4 more
A vulnerability in the Linux kernel's handling of IOMMU groups on PowerPC pSeries systems can lead to a NULL pointer dereference. This issue occurs when a user attempts to use a VFIO container with a different IOMMU group, causing the 'spapr_tce_set_window()' function to return an error. The subsequent cleanup process attempts to read a user page, leading to a crash. The kernel access violation is triggered by a NULL pointer dereference during the IOMMU group management process.
Exploitation of this vulnerability causes a kernel crash due to a NULL pointer dereference, disrupting system operations and potentially leading to a denial of service.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.